exam questions

Exam 312-50v11 All Questions

View all questions & answers for the 312-50v11 exam

Exam 312-50v11 topic 1 question 66 discussion

Actual exam question from ECCouncil's 312-50v11
Question #: 66
Topic #: 1
[All 312-50v11 Questions]

When analyzing the IDS logs, the system administrator noticed an alert was logged when the external router was accessed from the administrator's Computer to update the router configuration. What type of an alert is this?

  • A. False negative
  • B. True negative
  • C. True positive
  • D. False positive
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
The_Batman
Highly Voted 1 year, 8 months ago
The router's administrator is supposed to be able to access it for the purposes of administrating it. There is no attack here. Therefore, the alert is false. Since the alert detected the activity, it is a positive result. Therefore, D is correct; false positive. C would indicate that access was a legitimate threat. That may be from a social engineering perspective but IDS to not take social engineering into account.
upvoted 11 times
...
ANDRESCB1988
Highly Voted 1 year, 9 months ago
correct
upvoted 6 times
...
Daniel8660
Most Recent 6 months, 3 weeks ago
Selected Answer: D
Types of IDS Alerts False Postiive - An IDS raises an alarm when no attack has taken place. (P.1485/1469)
upvoted 3 times
...
baybay
7 months, 4 weeks ago
D. False Positive
upvoted 1 times
...
noblethic
10 months, 2 weeks ago
Selected Answer: D
D. False positive.
upvoted 1 times
...
spampat
1 year, 4 months ago
IRL this is called a benign positive... as the alert is doing a true detection, it just isn't malicious.
upvoted 4 times
...
AjaxFar
1 year, 5 months ago
False positive
upvoted 2 times
...
Jude2021
1 year, 9 months ago
C should be the answer.
upvoted 1 times
uglyoldgoat
1 year, 7 months ago
there is people taking exam here, please dont confuse others
upvoted 17 times
...
N0MAD99
7 months, 1 week ago
C is not correct i guess
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago